disable unprivileged userns for regular kernels

This commit is contained in:
Daniel Micay 2021-09-07 22:50:57 -04:00
parent 87db85274a
commit 5eead0ad5a

View File

@ -20,6 +20,8 @@ vm.mmap_rnd_compat_bits = 16
kernel.kptr_restrict = 2
kernel.unprivileged_userns_clone = 0
kernel.unprivileged_bpf_disabled = 1
net.core.bpf_jit_harden = 2